Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

linux — Vulnerabilities & Security Advisories 11746

Browse all 11746 CVE security advisories affecting linux. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Linux serves as the foundational operating system for the majority of internet servers, cloud infrastructure, and embedded devices, powering critical global digital services. Its open-source nature and widespread deployment have historically exposed it to diverse vulnerability classes, including remote code execution, buffer overflows, and privilege escalation flaws within kernel modules and system utilities. While the project maintains rigorous security practices, the sheer volume of code contributes to a high cumulative count of recorded Common Vulnerabilities and Exposures, currently exceeding eleven thousand. Notable incidents often stem from misconfigurations or unpatched legacy components rather than fundamental architectural failures. The community responds rapidly to disclosed threats, yet the extensive attack surface necessitates continuous vigilance. Administrators must prioritize regular updates and strict access controls to mitigate risks associated with this ubiquitous platform, ensuring stability across both enterprise and consumer environments.

CVE IDTitleCVSSSeverityPublished
CVE-2025-71150 ksmbd: Fix refcount leak when invalid session is found on session lookup — Linux 3.3 -2026-01-23
CVE-2025-71148 net/handshake: restore destructor on submit failure — Linux 6.5 -2026-01-23
CVE-2025-71147 KEYS: trusted: Fix a memory leak in tpm2_load_cmd — Linux 5.5 -2026-01-23
CVE-2025-71146 netfilter: nf_conncount: fix leaked ct in error paths — Linux 5.5 -2026-01-23
CVE-2025-71145 usb: phy: isp1301: fix non-OF device reference imbalance — Linux 7.7 -2026-01-23
CVE-2026-22977 net: sock: fix hardened usercopy panic in sock_recv_errqueue — Linux 5.5AIMediumAI2026-01-21
CVE-2026-22976 net/sched: sch_qfq: Fix NULL deref when deactivating inactive aggregate in qfq_reset — Linux 5.5AIMediumAI2026-01-21
CVE-2025-71144 mptcp: ensure context reset on disconnect() — Linux 7.5AIHighAI2026-01-14
CVE-2025-71143 clk: samsung: exynos-clkout: Assign .num before accessing .hws — Linux--AI2026-01-14
CVE-2025-71142 cpuset: fix warning when disabling remote partition — Linux--AI2026-01-14
CVE-2025-71141 drm/tilcdc: Fix removal actions in case of failed probe — Linux 7.1AIHighAI2026-01-14
CVE-2025-71140 media: mediatek: vcodec: Use spinlock for context list protection lock — Linux 6.5AIMediumAI2026-01-14
CVE-2025-71139 kernel/kexec: fix IMA when allocation happens in CMA area — Linux 7.1AIHighAI2026-01-14
CVE-2025-71138 drm/msm/dpu: Add missing NULL pointer check for pingpong interface — Linux 5.5AIMediumAI2026-01-14
CVE-2025-71137 octeontx2-pf: fix "UBSAN: shift-out-of-bounds error" — Linux 7.1AIHighAI2026-01-14
CVE-2025-71136 media: adv7842: Avoid possible out-of-bounds array accesses in adv7842_cp_log_status() — Linux 7.1AIHighAI2026-01-14
CVE-2025-71135 md/raid5: fix possible null-pointer dereferences in raid5_store_group_thread_cnt() — Linux 5.0AIMediumAI2026-01-14
CVE-2025-71134 mm/page_alloc: change all pageblocks migrate type on coalescing — Linux 8.8AIHighAI2026-01-14
CVE-2025-71133 RDMA/irdma: avoid invalid read in irdma_net_event — Linux 6.3AIMediumAI2026-01-14
CVE-2025-71132 smc91x: fix broken irq-context in PREEMPT_RT — Linux 7.1AIHighAI2026-01-14
CVE-2025-71130 drm/i915/gem: Zero-initialize the eb.vma array in i915_gem_do_execbuffer — Linux 5.5AIMediumAI2026-01-14
CVE-2025-71131 crypto: seqiv - Do not use req->iv after crypto_aead_encrypt — Linux 7.8AIHighAI2026-01-14
CVE-2025-71129 LoongArch: BPF: Sign extend kfunc call arguments — Linux 5.5AIMediumAI2026-01-14
CVE-2025-71128 erspan: Initialize options_len before referencing options. — Linux 7.7AIHighAI2026-01-14
CVE-2025-71127 wifi: mac80211: Discard Beacon frames to non-broadcast address — Linux 6.5AIMediumAI2026-01-14
CVE-2025-71125 tracing: Do not register unsupported perf events — Linux 5.5AIMediumAI2026-01-14
CVE-2025-71126 mptcp: avoid deadlock on fallback while reinjecting — Linux 6.5AIMediumAI2026-01-14
CVE-2025-71124 drm/msm/a6xx: move preempt_prepare_postamble after error check — Linux 5.5AIMediumAI2026-01-14
CVE-2025-71123 ext4: fix string copying in parse_apply_sb_mount_options() — Linux 7.1AIHighAI2026-01-14
CVE-2025-71122 iommufd/selftest: Check for overflow in IOMMU_TEST_OP_ADD_RESERVED — Linux 7.1AIHighAI2026-01-14

This page lists every published CVE security advisory associated with linux. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.